NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
59358 | CVE-2006-0627 | Cross-site scripting (XSS) vulnerability in Clever Copy 2.0, 2.0a, and 3.0 allows remote attackers to inject arbitrary web script or HTML via the (1) Referer or (2) X-Forwarded-For headers in an HTTP request, which are not properly handled when the administrator accesses Site Stats. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
59614 | CVE-2006-0885 | Cross-site scripting (XSS) vulnerability in show_news.php in CuteNews 1.4.1 allows remote attackers to inject arbitrary web script or HTML via the show parameter. | 2 | 4.3 | Medium | 2016-12-20 | 2011-03-07 | View | |
59870 | CVE-2006-1148 | Multiple stack-based buffer overflows in the procConnectArgs function in servmgr.cpp in PeerCast before 0.1217 allow remote attackers to execute arbitrary code via an HTTP GET request with a long (1) parameter name or (2) value in a URL, which triggers the overflow in the nextCGIarg function in servhs.cpp. | 2 | 7.5 | High | 2016-12-20 | 2011-09-06 | View | |
60126 | CVE-2006-1417 | Multiple cross-site scripting (XSS) vulnerabilities in Caloris Planitia Online Quiz System (aka Web Quiz pro), possibly 1.0, allow remote attackers to inject arbitrary web script or HTML via the (1) exam parameter in prequiz.asp or (2) msg parameter in student.asp. | 2 | 4.3 | Medium | 2016-12-20 | 2011-09-13 | View | |
60382 | CVE-2006-1677 | MAXdev MDPro 1.0.73 and 1.0.72, and possibly other versions before 1.076, allows remote attackers to obtain the full path of the server via a direct request to includes/legacy.php. | 2 | 6.4 | Medium | 2016-12-20 | 2011-10-03 | View |
Page 17475 of 17672, showing 5 records out of 88360 total, starting on record 87371, ending on 87375